CVE-2020-15400
30.06.2020, 12:15
CakePHP before 4.0.6 mishandles CSRF token generation. This might be remotely exploitable in conjunction with XSS.
| Vendor | Product | Version |
|---|---|---|
| cakefoundation | cakephp | 𝑥 < 4.0.6 |
𝑥
= Vulnerable software versions
Ubuntu Releases